Vulnerabilidades en Linux

13.162 resultados
Análisis Vexday

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2025-37848accel/ivpu: Fix PM related deadlocks in MS IOCTLsEPSS 0.2%CVE-2025-71196phy: stm32-usphyc: Fix off by one in probe()EPSS 0.2%CVE-2023-54208media: ov5675: Fix memleak in ov5675_init_controls()EPSS 0.2%CVE-2023-53989arm64: mm: fix VA-range sanity checkEPSS 0.2%CVE-2024-35784btrfs: fix deadlock with fiemap and extent lockingEPSS 0.2%CVE-2023-54089virtio_pmem: add the missing REQ_OP_WRITE for flush bioEPSS 0.2%CVE-2023-54068f2fs: compress: fix to call f2fs_wait_on_page_writeback() in f2fs_write_raw_pages()EPSS 0.2%CVE-2026-23049drm/panel-simple: fix connector type for DataImage SCF0700C48GGU18 panelEPSS 0.2%CVE-2025-68796f2fs: fix to avoid updating zero-sized extent in extent cacheEPSS 0.2%CVE-2025-68767hfsplus: Verify inode mode when loading from diskEPSS 0.2%CVE-2022-50786media: s5p-mfc: Clear workbit to handle error conditionEPSS 0.2%CVE-2025-38104drm/amdgpu: Replace Mutex with Spinlock for RLCG register access to avoid Priority Inversion in SRIOVEPSS 0.2%CVE-2024-56730MEDIUMnet/9p/usbg: fix handling of the failed kzalloc() memory allocationEPSS 0.2%CVE-2023-54175i2c: xiic: xiic_xfer(): Fix runtime PM leak on error pathEPSS 0.2%CVE-2025-68799caif: fix integer underflow in cffrml_receive()EPSS 0.2%CVE-2023-54299usb: typec: bus: verify partner exists in typec_altmode_attentionEPSS 0.2%CVE-2023-54186usb: typec: altmodes/displayport: fix pin_assignment_showEPSS 0.2%CVE-2025-71194btrfs: fix deadlock in wait_current_trans() due to ignored transaction typeEPSS 0.2%CVE-2022-50879objtool: Fix SEGFAULTEPSS 0.2%CVE-2024-56713net: netdevsim: fix nsim_pp_hold_write()EPSS 0.2%